oss-sec mailing list archives

Re: Re: CVE Request - tidy 0.99 / tidy5 heap-buffer-overflow


From: Mark Felder <feld () feld me>
Date: Sun, 12 Jul 2015 15:07:23 -0500



On Fri, Jul 10, 2015, at 19:45, Fernando Muñoz wrote:
I'm sorry, should I just give up about trying to get a CVE here?

I've just noticed this issue is also being tracked at Red Hat at the
moment:

https://bugzilla.redhat.com/show_bug.cgi?id=1228297

- F

FreeBSD has a vuxml entry for this vulnerability as well.

http://www.vuxml.org/freebsd/bd1ab7a5-0e01-11e5-9976-a0f3c100ae18.html


Current thread: